DarthLord_Ultnet
2 years agoSeasoned Hotshot
SWTOR.COM account no inactivity loggin out (security flow)
Hello.
I,ve found a bug/ serious security flow in website (www.swtor.com)
Once player enter the SWTOR.com website account and opens it, It never logging out the user due to inactivity or time period.
Also there is no way to check if there is another session active on another computer ( For example you forgot to log out from your account on your friend`s PC and there is no way to do that even if you change the password the opened session still will be active.)
This is critical vulnurability.
I beg IT security team to implement those features immidiately.
First - Auto timed logging out from swtor.com due to inactivity
Second - create a button to End all active sessions on any other devices.
Thanks.
Sincerely, Dan